<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: AAA Authentication Lightweight AP in Wireless</title>
    <link>https://community.cisco.com/t5/wireless/aaa-authentication-lightweight-ap/m-p/1845990#M15347</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;No this is not currently a feature in the CUWN architecture you would login to the WLC to configure the AP, 98% if the time. And you can co figure TACACS to the WLC. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;For the other two percent of the time you would enable telnet/ssh for the AP and set a username/password Combe there. It can be done globally or per AP&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Steve &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Sent from Cisco Technical Support iPhone App&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Sun, 22 Jan 2012 22:33:44 GMT</pubDate>
    <dc:creator>Stephen Rodriguez</dc:creator>
    <dc:date>2012-01-22T22:33:44Z</dc:date>
    <item>
      <title>AAA Authentication Lightweight AP</title>
      <link>https://community.cisco.com/t5/wireless/aaa-authentication-lightweight-ap/m-p/1845987#M15344</link>
      <description>&lt;P&gt;Is there a way to authenticate a user logging into (telnet/ssh) a lightweight AP using RADIUS or TACACS+?&amp;nbsp; I know you can set global usernames and passwords, but this customer would like to use ACS to authenticate user access to log into their APs.&lt;/P&gt;</description>
      <pubDate>Sun, 04 Jul 2021 04:19:30 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/aaa-authentication-lightweight-ap/m-p/1845987#M15344</guid>
      <dc:creator>AlexZmann</dc:creator>
      <dc:date>2021-07-04T04:19:30Z</dc:date>
    </item>
    <item>
      <title>AAA Authentication Lightweight AP</title>
      <link>https://community.cisco.com/t5/wireless/aaa-authentication-lightweight-ap/m-p/1845988#M15345</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;That is a good question... However, I don't think there is a way to do that.&amp;nbsp; That would mean you would have to create a AAA client for each AP along with the WLC.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 04 Jan 2012 15:41:35 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/aaa-authentication-lightweight-ap/m-p/1845988#M15345</guid>
      <dc:creator>Scott Fella</dc:creator>
      <dc:date>2012-01-04T15:41:35Z</dc:date>
    </item>
    <item>
      <title>AAA Authentication Lightweight AP</title>
      <link>https://community.cisco.com/t5/wireless/aaa-authentication-lightweight-ap/m-p/1845989#M15346</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Ok so, this may be a long shot. But a few days back I came across a similar situation where in the APs were doing radius authentication... &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;so what you want to do is (or at least try that out), use port security (dont have the commands) and authenticate using the client mac address. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;This may sound very vague as I myself did not understand the details of it that much..&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;however, in that scenario the APs were in hreap local switching mode (and use local radius on the AP side). There was some talk of using NEAT and all with the setup but to be honest I couldn't understand much.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;the other simple thing you can do is create an ACL for the AP subnet and maybe apply some sort of radius authentication or mac filtering on it.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Again, I am still not that fimilar with the wired side to comment on it for sure.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 22 Jan 2012 22:08:52 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/aaa-authentication-lightweight-ap/m-p/1845989#M15346</guid>
      <dc:creator>Viten Patel</dc:creator>
      <dc:date>2012-01-22T22:08:52Z</dc:date>
    </item>
    <item>
      <title>Re: AAA Authentication Lightweight AP</title>
      <link>https://community.cisco.com/t5/wireless/aaa-authentication-lightweight-ap/m-p/1845990#M15347</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;No this is not currently a feature in the CUWN architecture you would login to the WLC to configure the AP, 98% if the time. And you can co figure TACACS to the WLC. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;For the other two percent of the time you would enable telnet/ssh for the AP and set a username/password Combe there. It can be done globally or per AP&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Steve &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Sent from Cisco Technical Support iPhone App&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 22 Jan 2012 22:33:44 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/aaa-authentication-lightweight-ap/m-p/1845990#M15347</guid>
      <dc:creator>Stephen Rodriguez</dc:creator>
      <dc:date>2012-01-22T22:33:44Z</dc:date>
    </item>
  </channel>
</rss>

